12/04/2010 -
Finally, the words most merchants have been longing to hear - the PCI Security Standards Council has said it is "looking to making the requirements for compliance less time-intensive and easier to follow," reports Internet Retailer.The news website quoted PCI SSC general manager Bob Russo as saying that the council is looking to reduce the scope of the PCI DSS, primarily as it applies to specific environments like wireless and POS environments.
"The council is actually looking at how to limit PCI-DSS scope as it pertains to payment environments, because in the past it has been confusing for retailers on what aspects of their IT environment needs to be constantly monitored and reviewed to be PCI-compliant and secure," Russo told Internet Retailer.
The website notes that the council will pay particular attention to wireless network environments largely because hacker Albert Gonzalez - responsible for the large-scale payment processing breaches of Heartland Payment Systems, TJX and others - exploited wireless networks to gain access to cardholder data.
Another area the PCI SSC is looking to improve upon, said recent reports, is the education of small merchants on how to achieve PCI compliance.

We notice you are visiting from a U.S. Internet provider. 




